Version 5.2.12 of PHP has been released, closing a number of security holes.
"While PHP 5.3 has been available since mid 2009, backwards compatibility issues with various popular PHP applications have prevented many users from upgrading," according to The H Security. "Since, as a result, the 5.2 branch is still used on numerous systems, the developers continue to update this branch."
"The current update particularly prevents attackers from bypassing the safe_mode and open_basedir security functions in connection with the tempnam() and poxis_mkfifo() functions," the article states.
Click here to read the story at The H Security.
Loading Comments...